<?xml version="1.0"?>

<rss version="2.0">


<channel>
<title>Home - All Categories - FedRAMP  - Incident Response &amp;#40;IR&amp;#41;  </title>
<link>http://www.compliancewiki.org/category/fedramp/incident-response-ir/15/</link>
<description>This RSS Feed contains Articles of Category in the knowledge base. You can click on the title to view its content. Powered by PHPKB (https://www.phpkb.com)</description>
<item>
										<guid>http://www.compliancewiki.org/article/exposure-to-unauthorized-personnel-ir-9-4-734.html</guid>
										<title>Exposure to Unauthorized Personnel IR-9&#40;4&#41;</title>
										<link>http://www.compliancewiki.org/article/exposure-to-unauthorized-personnel-ir-9-4-734.html</link>
										<description><![CDATA[Overview:The organization employs [Assignment: organization-defined security safeguards] for personnel exposed to information not within assigned access authorizations. Supplemental Guidance:Security safeguards include, for example, making personnel...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/information-spillage-response-ir-9-730.html</guid>
										<title>Information Spillage Response IR-9</title>
										<link>http://www.compliancewiki.org/article/information-spillage-response-ir-9-730.html</link>
										<description><![CDATA[Overview:The organization responds to information spills by:a. Identifying the specific information involved in the information system contamination;b. Alerting [Assignment: organization-defined personnel or roles] of the information spill using a...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/responsible-personnel-ir-9-1-731.html</guid>
										<title>Responsible Personnel IR-9&#40;1&#41;</title>
										<link>http://www.compliancewiki.org/article/responsible-personnel-ir-9-1-731.html</link>
										<description><![CDATA[Overview:The organization assigns [Assignment: organization-defined personnel or roles] with responsibility for responding to information spills. Action Items:1) Create a response procedure for information spills and assign roles and responsibilities...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/post-spill-operations-ir-9-3-733.html</guid>
										<title>Post-Spill Operations IR-9&#40;3&#41;</title>
										<link>http://www.compliancewiki.org/article/post-spill-operations-ir-9-3-733.html</link>
										<description><![CDATA[Overview:The organization implements [Assignment: organization-defined procedures] to ensure that organizational personnel impacted by information spills can continue to carry out assigned tasks while contaminated systems are undergoing corrective...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/training-ir-9-2-732.html</guid>
										<title>Training IR-9&#40;2&#41;</title>
										<link>http://www.compliancewiki.org/article/training-ir-9-2-732.html</link>
										<description><![CDATA[Overview:The organization provides information spillage response training [Assignment: organization- defined frequency]. Action Items:1) Ensure information spillage response training occurs on a regular basis Related Documents:1) Incident Response...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/incident-handling-ir-4-721.html</guid>
										<title>Incident Handling IR-4</title>
										<link>http://www.compliancewiki.org/article/incident-handling-ir-4-721.html</link>
										<description><![CDATA[Overview: The organization:a. Implements an incident handling capability for security incidents that includes preparation, detection and analysis, containment, eradication, and recovery;b. Coordinates incident handling activities with contingency...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/automation-support-or-availability-of-information-and-support-ir-7-1-727.html</guid>
										<title>Automation Support or Availability of Information and Support IR-7&#40;1&#41;</title>
										<link>http://www.compliancewiki.org/article/automation-support-or-availability-of-information-and-support-ir-7-1-727.html</link>
										<description><![CDATA[Overview:The organization employs automated mechanisms to increase the availability of incident response- related information and support. Supplemental Guidance:Automated mechanisms can provide a push and/or pull capability for users to obtain...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/incident-response-policy-and-procedures-ir-1-717.html</guid>
										<title>Incident Response Policy and Procedures IR-1</title>
										<link>http://www.compliancewiki.org/article/incident-response-policy-and-procedures-ir-1-717.html</link>
										<description><![CDATA[Overview:The organization:a. Develops, documents, and disseminates to [Assignment: organization-defined personnel or roles]:1. An incident response policy that addresses purpose, scope, roles, responsibilities, management commitment, coordination...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/incident-response-assistance-ir-7-726.html</guid>
										<title>Incident Response Assistance IR-7</title>
										<link>http://www.compliancewiki.org/article/incident-response-assistance-ir-7-726.html</link>
										<description><![CDATA[Overview:The organization provides an incident response support resource, integral to the organizational incident response capability that offers advice and assistance to users of the information system for the handling and reporting of security...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/coordination-with-external-providers-ir-7-2-728.html</guid>
										<title>Coordination with External Providers IR-7&#40;2&#41;</title>
										<link>http://www.compliancewiki.org/article/coordination-with-external-providers-ir-7-2-728.html</link>
										<description><![CDATA[Overview:The organization:(a) Establishes a direct, cooperative relationship between its incident response capability and external providers of information system protection capability; and(b) Identifies organizational incident response team members...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/automated-reporting-ir-6-1-725.html</guid>
										<title>Automated Reporting IR-6&#40;1&#41;</title>
										<link>http://www.compliancewiki.org/article/automated-reporting-ir-6-1-725.html</link>
										<description><![CDATA[Overview:The organization employs automated mechanisms to assist in the reporting of security incidents. Supplemental Guidance: Related control:IR-7. Action Items:1) Implement automated mechanisms to support incident reporting procedures Related...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/incident-reporting-ir-6-724.html</guid>
										<title>Incident Reporting IR-6</title>
										<link>http://www.compliancewiki.org/article/incident-reporting-ir-6-724.html</link>
										<description><![CDATA[Overview:The organization:a. Requires personnel to report suspected security incidents to the organizational incident response capability within [Assignment: organization-defined time period]; andb. Reports security incident information to ...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/automated-incident-handling-processes-ir-4-1-722.html</guid>
										<title>Automated Incident Handling Processes IR-4&#40;1&#41;</title>
										<link>http://www.compliancewiki.org/article/automated-incident-handling-processes-ir-4-1-722.html</link>
										<description><![CDATA[Overview:The organization employs automated mechanisms to support the incident handling process. Supplemental Guidance:Automated mechanisms supporting incident handling processes include, for example, online incident management systems. Action Items...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/incident-monitoring-ir-5-723.html</guid>
										<title>Incident Monitoring IR-5</title>
										<link>http://www.compliancewiki.org/article/incident-monitoring-ir-5-723.html</link>
										<description><![CDATA[Overview:The organization tracks and documents information system security incidents. Supplemental Guidance:Documenting information system security incidents includes, for example, maintaining records about each incident, the status of the incident,...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/incident-response-plan-ir-8-729.html</guid>
										<title>Incident Response Plan IR-8</title>
										<link>http://www.compliancewiki.org/article/incident-response-plan-ir-8-729.html</link>
										<description><![CDATA[Overview:The organization:a. Develops an incident response plan that:1. Provides the organization with a roadmap for implementing its incident response capability;2. Describes the structure and organization of the incident response capability;3....]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/incident-response-training-ir-2-718.html</guid>
										<title>Incident Response Training IR-2</title>
										<link>http://www.compliancewiki.org/article/incident-response-training-ir-2-718.html</link>
										<description><![CDATA[Overview:The organization provides incident response training to information system users consistent with assigned roles and responsibilities:a. Within [Assignment: organization-defined time period] of assuming an incident response role or...]]></description>

									</item>
<item>
										<guid>http://www.compliancewiki.org/article/coordination-with-related-plans-ir-3-2-720.html</guid>
										<title>Coordination with Related Plans IR-3&#40;2&#41;</title>
										<link>http://www.compliancewiki.org/article/coordination-with-related-plans-ir-3-2-720.html</link>
										<description><![CDATA[Overview:The organization coordinates incident response testing with organizational elements responsible for related plans. Supplemental Guidance:Organizational plans related to incident response testing include, for example, Business Continuity...]]></description>

									</item>

</channel>

</rss>